Thanks for the reply,I got it working now by set ports on destination.I also added these rules on LAN.
One more question:Should I create e.g. for the HTTPS traffic,2 rules,one with Direction "In" and one with Direction "Out" so as I do both Ingress(incoming) and Egress(outcoming) filtering?I read that since Opnsense is a stateful firewall,you can only write one rule and it applies to both directions.Is this correct?
Also, when I disable the Allow DNS rule,I can visit any site,so DNS Allow rule seems of no use.What could be the issue?Thanks
Do you actually want to allow traffic from the internet towards your firewall on these ports, or is your goal just to let LAN devices out? If it's the latter, then you should remove the rules from your WAN interface, they're not doing what you think they're doing.
Please post a screenshot of all rules on all interfaces, plus some additonal info on your DHCP and DNS (Unbound) settings. There could be many reasons
What is your goal with redirecting/blocking DNS?
Also why are there two allow-all rules below your last "Deny all traffic" rule? They will probably never match...